Quantcast
Channel: MikroTik
Viewing all articles
Browse latest Browse all 21191

Beginner Basics • Re: Two DNS server behind one IP address?

$
0
0
Settings on MikroTik:
DHCP server
Code:
DHCP server# ADDRESS         GATEWAY      DNS-SERVER 0 192.168.1.0/24  192.168.1.1  192.168.1.1DNS                      servers:               dynamic-servers:                use-doh-server: https://1.1.1.1/dns-query              verify-doh-cert: yes   doh-max-server-connections: 5   doh-max-concurrent-queries: 50                  doh-timeout: 5s        allow-remote-requests: yes          max-udp-packet-size: 4096         query-server-timeout: 2s          query-total-timeout: 10s       max-concurrent-queries: 100  max-concurrent-tcp-sessions: 20                   cache-size: 2048KiB                cache-max-ttl: 1w      address-list-extra-time: 0s                   cache-used: 99KiBNAT1    ;;; Redirect DNS to AdGuard (UDP)      chain=dstnat action=dst-nat to-addresses=192.168.1.254 to-ports=53 protocol=udp src-address=!192.168.1.254 dst-port=53 log=no log-prefix=""  2    ;;; Redirect DNS to AdGuard (TCP)      chain=dstnat action=dst-nat to-addresses=192.168.1.254 to-ports=53 protocol=tcp src-address=!192.168.1.254 dst-port=53 log=no log-prefix=""            Script:local adguardIP "192.168.1.254":local isAdguardAlive [/ping $adguardIP count=3]:if ($isAdguardAlive = 0) do={    :log info "AdGuard Home is down, disabling DNS redirection NAT rules."    /ip firewall nat set [find comment="Redirect DNS to AdGuard"] disabled=yes} else={    :log info "AdGuard Home is up, enabling DNS redirection NAT rules."    /ip firewall nat set [find comment="Redirect DNS to AdGuard"] disabled=no}
In this configuration, websites don't work. After disabling NAT rules, everything works flawlessly. There seems to be an issue with forwarding. Does anyone have any idea?

Statistics: Posted by nocc — Sun Feb 11, 2024 4:44 pm



Viewing all articles
Browse latest Browse all 21191

Trending Articles